Thursday 3 May 2012

Because Just Password are not Enough....!!!!

Having said the above Headline it means that in today's world technology has evolved a lot when it comes to communicate to anyone on the cloud or paying your utility bills via credit card or transferring fund to anyone anywhere in the world....
Everything is possible...and this possibility has been made available to us via Internet -> Net banking -> eMail and ++++++....
So, is it so easy as it was for me to write on the Blog....the answer is "No"...
Lets try to find out the reason why I said "NO"....Now lets go back to the Topic of this Blog....
------> Because Just Password are not Enough....!!!! <--------

1) Security Issues : While making online payments for your utility bills or transferring money from one account to another, the online users (like you and me ) are always concerned about the fraud...what if sumbody will hack my account and wipe out all my money from the account, or if hacker will steal my credit / debit card information . Hacking (a process by which a person from out side the network ) can get hold of your password, account details etc..) enables the unethical hackers ( there are ethical hackers too..:-) to penetrate the accounts of online users, and spend their money. Availability of confidential information which is just secured by a user name and password, makes it vulnerable to such threats.
------> Because Just Password are not Enough....!!!! <-------- :-)

Most of the banks / and the online portals try to make their sites secured by implementing latest network security software ( depends upon their spending capability ) . However, there have been plenty of cases in which web surfers were accidentally exposed to the financial details of online bankers. Internet security had a setback when in 2004, Morgan Stanley admitted a serious security flaw in the system of the latest online banking operation. This flaw allowed customers to access account details of other clients.

2) Online Fraud : You just won the online lottery ............( I almost receive 2-3 mails daily in my mail box... specially comes from Nigeria.
The threat of duping customers with Nigerian mails like fraudulent emails, lottery or advance fee mails, fake websites, fake online surveys, etc., is very common in Indian online world ( lack of internet knowledge and internet fraud). Phishing activities also result in the disclosure of confidential details such as name, address, bank account number, passwords, etc., of the customers, giving rise to identity thefts. Many of the Indian e-commerce websites have no proper implementation of procedures to protect the encrypted data, thus leading to leakage of key information of the online transactions. As a result, Indian customers are afraid to do transactions online.

How to tackle these kind of Frauds.....
As said and mentioned above...Just password are not enough...you have involve 2 Factor while doing any online transaction.
the way we withdraw money from the ATM...it involves 2 Factors :

1 Factor : PIN Number ( which we remember)
2 Factor :- ATM Card (which we carry)

without the combination of both the Factor money withdrawal is impossible....same way we can involve 2 factor while doing any Online payment / transactions.

one is your password another is token (made available by all the banks now)...token generates a 6 digit number on the monitor which you can combine along with your password and put it while doing any online transactions/payments..
remember always make sure that you are landing on the intended page...for that look for https:// in the address bar as prefix of the url:-- https://login.icicibank.com...
also you can double click on the Lock pad on the below or on the address bar..it will give you the correct information about the website (correct website name aswell), so that you can be sure that you are on the right page.. (pishing attack :- fake website will look similar to the original website and it will store your username and password) which can be used by the hacker to screw your happiness....

SO please be careful in the Web World...
cya...


No comments:

Post a Comment